Imagery for News & Events

Press Releases

BLADELOGIC RECEIVES HIGHEST SECURITY RATING FROM LEADING DIGITAL SECURITY FIRM

Company’s Data Center Automation Software Rated as Excellent by @stake for Securely Managing Application Infrastructure

Waltham, MA – March 8, 2004—BladeLogic Inc., the number one provider of data center automation software, today announced that @stake, the leading digital security consulting firm, has assessed BladeLogic Operations Manager™ to have the highest security ratings available in the categories of authentication, authorization, communication security, and cryptography after a comprehensive evaluation of the software. With application infrastructure becoming more complex and costly to manage, and strict corporate compliance regulations such as Sarbanes-Oxley and HIPAA affecting IT, companies are investing in server automation tools to gain control over their data centers. Yet the tools themselves can often increase security risks if not properly architected for secure server management. BladeLogic’s top ranking by the industry’s foremost digital security company demonstrates its leadership in delivering a solution embedded with the most advanced security methodologies and technologies available today.

“Based upon a thorough security assessment performed on the BladeLogic Operations Manager software, BladeLogic received the highest classification - Excellent - in the categories of Authentication, Authorization, Communication Security, and Cryptography,” said Mike Erickson, Managing Security Architect for @stake. “BladeLogic’s impressive ranking in these areas sets it apart from many other software products @stake has assessed and establishes an important benchmark for secure server automation.”

The @stake assessment identified the following security best practices within BladeLogic Operations Manager:

Authentication - BladeLogic supports three industry-leading models for user authentication including operating system-based user inheritance, Secure Remote Password, and PKI Cryptography (X.509 Certificates). This gives companies superior flexibility and control in confirming the identity of a user.

Authorization - BladeLogic provides a granular role-based authorization and privilege-granting model. A dedicated management console enables companies to easily create various roles with a defined set of available functions based on specific responsibilities, privileges and skill sets. Access can be limited to any application, server, directory, command, or configuration component. This feature provides fine-grained access control, prevents unauthorized access, and gives companies the ability to track all user related changes in their environment.

Communication Security & Cryptography - BladeLogic supports a range of strong encryption options for communication between components in the system. With support for the TLS and Kerberos protocols and the availability of strong encryption algorithms including 3DES, Blowfish, and AES, BladeLogic provides the highest level of data security available today. Encrypted communication helps protect against common vulnerabilities such as session hijacking and password sniffing and protects configuration data as it passes over the network.

“With some of the largest companies in the world using BladeLogic to improve security and compliance in their data center, our own software must set the standard for secure server automation,” said Vijay Manwani, Chief Technology Officer with BladeLogic. “With the rating of “Excellent” by the industry’s most respected security consulting firm, our customers can be confident that they have the most secure data center automation solution in the market today.”

BladeLogic Operations Manager enables IT organizations to efficiently and securely provision and configure their UNIX, Linux and Windows servers and automate all ongoing changes required for server lifecycle management such as application release management, patch management, and configuration repair. Furthermore, BladeLogic Operations Manager enables IT managers to proactively measure compliance to security and configuration policies and automatically correct discrepancies in order to maintain configuration consistency in the data center. By providing the ability to effect large scale provisioning and change while ensuring compliance to policies, Operations Manager allows organizations to implement "Coherency" - which enables any change, across any platform, with any skill™ - to address today's key data center management challenges while offering a tangible roadmap to a utility computing environment.

About @stake, Inc.

@stake, Inc., the premier digital security consulting firm, provides security services and award-winning products to assess and manage risk in complex enterprise environments. @stake clients include six of the world’s top ten financial institutions, four of the world’s top ten independent software companies and seven of the world’s top ten telecommunication carriers. Headquartered in Cambridge, MA, @stake has offices in Chicago, London, New York, Raleigh, San Francisco, and Seattle. For more information, go to www.atstake.com.

About BladeLogic (NASDAQ: BLOG)

BladeLogic is a leading provider of data center automation software with a large installed base of Fortune Global 500 customers, including 21 of the top 100 global companies, 3 of the top 10 aerospace and defense companies, 7 of the top 25 commercial and savings banks, 3 of the top 5 securities companies, 2 of the top 3 entertainment companies, 2 of the top 3 general merchandisers, 7 of the top 12 pharmaceutical companies and 7 of the top 10 telecommunications companies. BladeLogic’s data center automation software solutions enable enterprises, service providers and government organizations to easily browse, provision, configure, patch, audit and remediate physical and virtual servers and applications, allowing customers to achieve reduced data center operating costs, improved service quality and enhanced security and compliance. BladeLogic is headquartered in Lexington, Massachusetts, USA. For more information, please visit www.bladelogic.com.

Contact:

BladeLogic
Tedd Rodman
+1-781-257-3560
trodman@bladelogic.com

BACK TO ALL 2004 PRESS RELEASES